Correct and efficient classification of network traffic according to application layer protocols is essential for most network-management, resource allocation, and intrusion detection systems. With the ever increasing number of protocols and services running on non-standard transport-layer ports, the classification methods based on the analysis of the transport layer header are rapidly becoming ineffective. In the worst case, payload analysis techniques can become completely ineffective, for example when end-to-end encryption mechanisms, such as Transport Layer Security, are used to protect the payload.
Therefore, the main goal of RECIPE project is to design and develop robust and efficient traffic classification tools for IP networks useful for anomaly detection, intrusion detection and intrusion prevention systems, enforcement of network security policies by traffic filtering, QoS management and traffic engineering, network provisioning.
- Università degli Studi di Napoli "Federico II"
- Politecnico di Milano
- Università degli Studi di Pisa
- Università degli Studi di Brescia